
Airlock Gateway 8.4
Airlock Anomaly Shield
Quick start for fast and risk-free ML detectionAnomaly Shield now includes a Quick Start feature that enables the setup of a basic, risk-free Machine Learning configuration in under five minutes. Specially developed machine learning methods automatically suggest five suitable mappings and immediately initiate model training – no manual configuration or license required.
The entire process is completely risk-free, as Anomaly Shield runs in log-only mode after Quick Start. The familiar Kibana dashboards remain available for result analysis.
Anomaly Shield also offers improved protection for web forms – which are among the most common entry points for attackers. It now not only analyses the usage of web forms but also the submitted input values, reliably even during authenticated sessions. Specialized ML methods ensure that power users are accurately recognized while false positives are minimized. This feature extends the existing query parameter model and now also supports body parameters.
In internal tests, the model demonstrated particularly strong performance in detecting password spraying and credential stuffing attacks.
Brute Force Protection
Better safeguards for your web formsThe new Brute Force Protection feature provides stronger defense for a range of web forms – including contact, registration, and password reset forms.
The feature offers enhanced protection for login forms against the following common attack types:
- Credential stuffing: Attackers use lists of compromised usernames and passwords to identify valid credentials.
- Password spraying: Attackers test a common password across multiple usernames to find matches.
- Dictionary attacks: Attackers target a single user with a list of passwords to see which ones work.
REST API enhancements
More automation, less effortAirlock Gateway’s REST API is a central tool for automating configuration tasks in large environments. With version 8.4, we have significantly expanded its capabilities based on customer and partner feedback:
- Configuration import: The import now supports all options available in the Configuration Center.
- Request and response actions: Global and mapping-specific actions can now be enabled or disabled via the REST API. It is also possible to configure custom request and response actions.
- Custom deny rules: These can now be created, updated, and toggled globally or per mapping using the REST API.
These enhancements make the REST API an even more powerful tool for fully automated configuration workflows.
OpenAPI specification enforcement
Fewer mappings, more clarityWith Airlock Gateway 8.4, OpenAPI specification enforcement can now be configured path-based within a single mapping. This means that different OpenAPI specification files can be applied to different paths within the same mapping.
This not only reduces the number of required mappings, but also greatly improves manageability and configuration clarity – especially in complex API landscapes.
The consolidated configuration makes daily operations more efficient and creates better conditions for targeted hardening of individual application areas, thereby increasing security.
Shortened support lifecycle for Gateway 8.4
Airlock Gateway 8.5 will introduce OpenSSL version 3.5. Since the current version 3.0.x will only be supported by the OpenSSL project until August 2026, the support lifecycle for Gateway 8.4 has been slightly shortened to align with this timeline.
Support for Airlock Gateway 8.4 will therefore end in August 2026.
Hardened filter rules thanks to bug bounties
Last but not least, our Airlock Bug Bounty Program, successfully running since 2020, has led to numerous security improvements, which are now included in this release. We thank the white-hat hackers who share their findings with us. Learn more about the Airlock Bug Bounty Program here.
Updating is easy
Airlock Gateway 8.4 is now available on the Airlock Techzone. Updating to this minor version requires no manual adjustments – your existing configuration can be easily migrated and activated. A detailed overview of all updates and fixes can be found in the release notes.
Airlock Gateway 8.4 Release video
In our release video you learn all the details about Airlock Gateway 8.4.